Themes Vulnerabilities

Lenxel WP <= 1.0.31 - Unauthenticated Account Takeover via Arbitrary Password Reset

Description

The theme does not perform any authorization or ownership check on its password-reset action, validating only a CSRF nonce, allowing unauthenticated attackers to reset the password of any user (including an administrator) and take over the account.

Proof of Concept

Affects Themes

No known fix

References

Classification

Miscellaneous

Original Researcher
moonge
Submitter
moonge
Verified
Yes

Timeline

Publicly Published
2026-07-21 (about 12 days ago)
Added
2026-07-21 (about 11 days ago)
Last Updated
2026-07-31 (about 1 day ago)

Other